From: Ross Burton <ross.burton@intel.com>
To: openembedded-core@lists.openembedded.org
Subject: [PATCH 00/13] Dizzy c-pull
Date: Fri, 17 Oct 2014 12:50:02 +0100 [thread overview]
Message-ID: <cover.1413544461.git.ross.burton@intel.com> (raw)
Hi,
Thanks to the POODLE attack there's a slew of CVEs, so we integrated the new
libssl release. As we're going to run another RC, merge some other security or
low-impact patches too.
Ross
The following changes since commit ccf5a4d2342c4fd40e4e0b332ea7e34e0bf175d4:
build-appliance-image: Update to dizzy head revision (2014-10-11 08:11:17 +0100)
are available in the git repository at:
git://git.yoctoproject.org/poky-contrib ross/mut
for you to fetch changes up to 723a5dc4f839767d35ed9148433c10ec1ad0abe4:
gst-ffmpeg: Security Advisory - ffmpeg - CVE-2013-0869 (2014-10-16 22:23:44 +0100)
----------------------------------------------------------------
Hongxu Jia (2):
wic/bootimg-pcbios.py: checking the existance of syslinux
file: add wrapper to nativesdk-file
Kai Kang (3):
gnupg: CVE-2013-4242
readline: Security Advisory - readline - CVE-2014-2524
gnupg_1.4.7: add package config libusb
Paul Eggleton (2):
python: force off_t size to 8 to enable large file support
openssh: avoid screen sessions being killed on disconnect with systemd
Peter Urbanec (1):
sstate.bbclass: Fix up white space lost in last commit.
Ross Burton (1):
openssl: upgrade to 1.0.1j
Wenlin Kang (1):
mtools: fix broken /usr/bin/lz
Wenzong Fan (1):
sstate.bbclass: specify func dirs for sstate_hardcode_path
Yue Tao (2):
gst-ffmpeg: Security Advisory - ffmpeg - CVE-2013-4358
gst-ffmpeg: Security Advisory - ffmpeg - CVE-2013-0869
meta/classes/sstate.bbclass | 45 +++---
.../openssh/openssh/sshd@.service | 1 +
.../{openssl_1.0.1i.bb => openssl_1.0.1j.bb} | 4 +-
.../readline/readline-6.3/readline63-003 | 43 ++++++
meta/recipes-core/readline/readline_6.3.bb | 2 +
meta/recipes-devtools/file/file_5.18.bb | 5 +
.../mtools/mtools/fix-broken-lz.patch | 23 ++++
meta/recipes-devtools/mtools/mtools_3.9.9.bb | 4 +-
meta/recipes-devtools/python/python_2.7.3.bb | 3 +
...t-parameters-from-SPS-whenever-it-changes.patch | 145 ++++++++++++++++++++
...rror-concealment-when-SPS-and-slices-are-.patch | 33 +++++
.../gstreamer/gst-ffmpeg_0.10.13.bb | 2 +
.../gnupg/gnupg-1.4.7/CVE-2013-4242.patch | 62 +++++++++
meta/recipes-support/gnupg/gnupg_1.4.7.bb | 2 +
scripts/lib/wic/plugins/source/bootimg-pcbios.py | 11 +-
15 files changed, 361 insertions(+), 24 deletions(-)
rename meta/recipes-connectivity/openssl/{openssl_1.0.1i.bb => openssl_1.0.1j.bb} (92%)
create mode 100644 meta/recipes-core/readline/readline-6.3/readline63-003
create mode 100644 meta/recipes-devtools/mtools/mtools/fix-broken-lz.patch
create mode 100644 meta/recipes-multimedia/gstreamer/gst-ffmpeg-0.10.13/0001-h264-set-parameters-from-SPS-whenever-it-changes.patch
create mode 100644 meta/recipes-multimedia/gstreamer/gst-ffmpeg-0.10.13/0001-h264-skip-error-concealment-when-SPS-and-slices-are-.patch
create mode 100644 meta/recipes-support/gnupg/gnupg-1.4.7/CVE-2013-4242.patch
Hongxu Jia (2):
wic/bootimg-pcbios.py: checking the existance of syslinux
file: add wrapper to nativesdk-file
Kai Kang (3):
gnupg: CVE-2013-4242
readline: Security Advisory - readline - CVE-2014-2524
gnupg_1.4.7: add package config libusb
Paul Eggleton (2):
python: force off_t size to 8 to enable large file support
openssh: avoid screen sessions being killed on disconnect with
systemd
Peter Urbanec (1):
sstate.bbclass: Fix up white space lost in last commit.
Ross Burton (1):
openssl: upgrade to 1.0.1j
Wenlin Kang (1):
mtools: fix broken /usr/bin/lz
Wenzong Fan (1):
sstate.bbclass: specify func dirs for sstate_hardcode_path
Yue Tao (2):
gst-ffmpeg: Security Advisory - ffmpeg - CVE-2013-4358
gst-ffmpeg: Security Advisory - ffmpeg - CVE-2013-0869
meta/classes/sstate.bbclass | 45 +++---
.../openssh/openssh/sshd@.service | 1 +
.../{openssl_1.0.1i.bb => openssl_1.0.1j.bb} | 4 +-
.../readline/readline-6.3/readline63-003 | 43 ++++++
meta/recipes-core/readline/readline_6.3.bb | 2 +
meta/recipes-devtools/file/file_5.18.bb | 5 +
.../mtools/mtools/fix-broken-lz.patch | 23 ++++
meta/recipes-devtools/mtools/mtools_3.9.9.bb | 4 +-
meta/recipes-devtools/python/python_2.7.3.bb | 3 +
...t-parameters-from-SPS-whenever-it-changes.patch | 145 ++++++++++++++++++++
...rror-concealment-when-SPS-and-slices-are-.patch | 33 +++++
.../gstreamer/gst-ffmpeg_0.10.13.bb | 2 +
.../gnupg/gnupg-1.4.7/CVE-2013-4242.patch | 62 +++++++++
meta/recipes-support/gnupg/gnupg_1.4.7.bb | 2 +
scripts/lib/wic/plugins/source/bootimg-pcbios.py | 11 +-
15 files changed, 361 insertions(+), 24 deletions(-)
rename meta/recipes-connectivity/openssl/{openssl_1.0.1i.bb => openssl_1.0.1j.bb} (92%)
create mode 100644 meta/recipes-core/readline/readline-6.3/readline63-003
create mode 100644 meta/recipes-devtools/mtools/mtools/fix-broken-lz.patch
create mode 100644 meta/recipes-multimedia/gstreamer/gst-ffmpeg-0.10.13/0001-h264-set-parameters-from-SPS-whenever-it-changes.patch
create mode 100644 meta/recipes-multimedia/gstreamer/gst-ffmpeg-0.10.13/0001-h264-skip-error-concealment-when-SPS-and-slices-are-.patch
create mode 100644 meta/recipes-support/gnupg/gnupg-1.4.7/CVE-2013-4242.patch
--
1.7.10.4
reply other threads:[~2014-10-17 11:50 UTC|newest]
Thread overview: [no followups] expand[flat|nested] mbox.gz Atom feed
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=cover.1413544461.git.ross.burton@intel.com \
--to=ross.burton@intel.com \
--cc=openembedded-core@lists.openembedded.org \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.